40fdd7ee.cdn.programvaradwn.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain 40fdd7ee.cdn.programvaradwn.com is registered by proxy through GODADDY.COM, LLC and was originally registered in January of 2016. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Garden City, New York within the United States which resides on the Webair Internet Development Company Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
New York, United States (US)

Create date:
Monday, January 11, 2016

Expires date:
Wednesday, January 11, 2017

Updated date:
Friday, February 5, 2016

ASN:
AS27257 WEBAIR-INTERNET - Webair Internet Development Company Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Bkav FE
W32.Clode27.Trojan
100.00%

McAfee
Artemis!AB939C13142A
100.00%

Malwarebytes
PUP.Optional.InstallCore.A
100.00%

Trend Micro House Call
TROJ_GEN.F47V1118
100.00%

SUPERAntiSpyware
PUP.InstallCore/Variant
100.00%

Sophos
Install Core Click run software
100.00%

Dr.Web
Trojan.Packed.24524
100.00%

VIPRE Antivirus
InstallCore
100.00%

Avira AntiVirus
Adware/InstallCore.fsv
100.00%

ESET NOD32
Win32/InstallCore.FJ (variant)
100.00%

Reason Heuristics
PUP.InstallCore.Bundler (M)
100.00%

The domain 40fdd7ee.cdn.programvaradwn.com has been seen to resolve to the following IP address.

February 14, 2016

File downloads found at URLs served by 40fdd7ee.cdn.programvaradwn.com.

URL:
http://40fdd7ee.cdn.programvaradwn.com/

Title:
“Loading”

Web server:
nginx/1.8.0